IMT6021
Foundations of Information Security
Sist undervist 2020
Vår og Høst
Gjøvik
Engelsk
Ingen karakterstatistikk ennå
Vi har ikke karakterdata for dette emnet ennå. Statistikk kan dukke opp når resultater er offentliggjort.
Om emnet
Faglig innhold
-Security Analysis Models and Methods
-Foundations of Identification and Authentication
-Trust and Reputation Models
-Access Control Models and Foundational Results
-Security and Information Flow Models
-Developmental Assurance
Læringsmål
The module provides an overview over several foundational areas in information security. In doing so, the module seeks to provide a consistent narrative emphasising the need for thorough analysis of threats and vulnerabilities and the inclusion of assurance mechanisms and metrics over considering security mechanisms in isolation.The core of the module is given over to a rigorous discussion of security models and their relation to access control models with selected issues in identification and authentication and their required trust and reputation models also covered.
Skills:
On concluding the module, candidates
are able to analyse an information system's security relying on formal and semi-formal methods
can identify appropriate formal security and information flow models consistent with threat and risk analyses as well as security policies
are able to evaluate and conduct developmental assurance processes
Knowledge:
On concluding the module, candidates
will have an in-depth understanding of formal security models, particularly access control and information flow models
will be able to synthesise or analyse a formal or semi-formal system security analysis with emphasis on attack tree variant models
can articulate constraints and risks for identification and authentication mechanisms serving as a pre-requisite for formal security model
General Competence:
On concluding the module, candidates
are able to assess formal and informal security models
have formed an overview of the foundations of information security allowing to contextualise and frame discussions in the area
will have developed the ability to link disjoint areas of information security, synthesising security models and realisations
Læringsformer og aktiviteter
-Lectures
-Literature study and term paper
Compulsory requirements: None